Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Kemi Omowaire

Atlanta,GA

Summary

Results-driven Information Security Analyst. Organized and dependable, successful at managing multiple priorities with a positive attitude. Strengths in learning new software/ applications quickly; experienced testing security framework for cloud-based software. Notable success and knowledge in risk management framework (RMF), systems development life cycle (SDLC), and vulnerability management using FISMA, FedRAMP, and applicable NIST standards. Adept in vulnerability assessment and fostering cross-functional team collaboration.

Solutions-focused, deadline-focused, works well independently or in a team.

Very passionate about providing security solutions, ever ready to help team achieve company goals. Possesses excellent communication and presentation skills.

Overview

9
9
years of professional experience
1
1
Certification

Work History

IT SECURITY ANALYST

WebPT INC
05.2021 - Current
  • Collaborated with cross-functional teams to address complex security incidents, and recommended a threat detection system that minimized potential false positives by 50%.
  • Simplified the process of rolling out security updates to end-users by creating an easy-to-follow update schedule and corresponding documentation across 5 major projects.
  • Managed security assessments, ensuring compliance with industry standards and regulations.
  • Facilitates Security Control Assessment (SCA), continuous monitoring activities, and supports the A&A (C&A)/HIPAA compliance activities according to project plans.
  • Examines, Executes, and tests procedures in accordance with NIST SP 800-53A.
  • Reduced potential security risks by 40% by proactively monitoring systems for suspicious activity and taking appropriate action.
  • Creates customized reports for stakeholders detailing key metrics related to IT security performance, fostering transparency and accountability within the organization.
  • Conducts security audits to identify vulnerabilities, played a key role in a team that successfully defended against a major cyber-attack.
  • Managed relationships with third-party intrusion detection system providers.
  • Updates and reviews A&A Packages to include Core Docs, Policy & Procedures, Operations and Maintenance Artifacts, SSP, SAR, FIPS 200, FIPS 199, POA&M, CPTPR, BIA, PTA, and more.
  • Reviews SAR post assessment; creates and completes POA&M's milestones to remediate findings and vulnerabilities.
  • Monitors security controls post authorization to ensure continuous compliance with the security requirements.

IT SECURITY ANALYST

Ohio State University Wexner Medical Center
03.2018 - 04.2021
  • Simplified the process of rolling out security updates to end-users by creating an easy-to-follow update schedule and corresponding documentation across 5 departments, advising on cybersecurity best practices, leading to a 50% reduction in security breaches.
  • Guided security assessments and supported the A&A (C&A)/ HIPAA compliance activities according to the project plans; Reviewed authorization documentation for accuracy and compliance; Facilitated security control assessment (SCA) and continuous monitoring activities.
  • Managed vulnerabilities with the aid of Nessus vulnerability scanners to detect potential risks on a single or multiple assets across the institution's network.
  • Scheduled kick-off meetings with system owners to identify assessment scope
  • Conducted security audits to identify vulnerabilities.
  • Educated employees about cybersecurity best practices, reducing instances of user-related incidents significantly by 50%.
  • Managed relationships with third-party intrusion detection system providers.
  • Collaborated with IT teams on a project that enhanced the security infrastructure of the institution. Integrated the security measures with the development and deployment of new efficient and user-friendly applications.
  • Conducted thorough risk assessments to identify areas needing improvement within current security protocols.

Business Analyst

JP Morgan Chase
06.2015 - 03.2018
  • Performed gap analysis between existing systems or processes and desired state, identifying areas for improvement or enhancement.
  • Evaluated proposals for departmental technology solutions, selecting those best-suited for meeting organizational goa
  • Actively participated in team meetings to share knowledge, exchange ideas, address challenges, and collaborate on potential solutions.
  • Developed high-quality documentation to support training efforts, helping employees fully understand new systems and procedures.
  • Enabled data-driven decision making with advanced analytics tools, generating valuable insights for the organization.
  • Executed analysis of risks and identified risk mitigation strategies.
  • Provided technical support for troubleshooting analytics and reporting issues.
  • Researched and adopted new technologies to add value to existing offerings.

Education

Bachelor of Science - Computer And Information Sciences

University of Ibadan

Skills

  • Vulnerability Assessment
  • Identity and Access Management
  • GRC Tools: CSAM, eMASS, CSET
  • Scripting Languages: HTML, XML, Java, SQL
  • Access Control
  • Report Analysis
  • Splunk, Active Directory, & more
  • Compliance Monitoring
  • Security Needs Assessment
  • Procedure Documentation

Certification

  • CISSP - Certified Information System Security Professional (In view - Aug 2024)
  • CompTIA Security+ (In view - July 2024)

Timeline

IT SECURITY ANALYST

WebPT INC
05.2021 - Current

IT SECURITY ANALYST

Ohio State University Wexner Medical Center
03.2018 - 04.2021

Business Analyst

JP Morgan Chase
06.2015 - 03.2018

Bachelor of Science - Computer And Information Sciences

University of Ibadan
Kemi Omowaire